OTL Extras logfile created on: 2012-11-22 10:10:32 - Run 4 OTL by OldTimer - Version 3.2.69.0 Folder = E:\pobierane 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,99 Gb Total Physical Memory | 2,07 Gb Available Physical Memory | 51,74% Memory free 7,99 Gb Paging File | 5,89 Gb Available in Paging File | 73,73% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 40,06 Gb Total Space | 4,93 Gb Free Space | 12,30% Space Free | Partition Type: NTFS Drive D: | 121,21 Gb Total Space | 5,10 Gb Free Space | 4,21% Space Free | Partition Type: NTFS Drive E: | 136,81 Gb Total Space | 23,68 Gb Free Space | 17,31% Space Free | Partition Type: NTFS Computer Name: ARTUR-PC | User Name: artur | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-312835210-1680697756-3547760466-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- D:\Programy\Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "D:\Programy\Office12\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "D:\Programy\Office12\msohtmed.exe" /p %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Bridge] -- D:\Programy\PHOTOSHOP\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [Browse with &IrfanView] -- "D:\Programy\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- D:\Programy\Office12\ONENOTE.EXE "%L" (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- "D:\Programy\Office12\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "D:\Programy\Office12\msohtmed.exe" /p %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Bridge] -- D:\Programy\PHOTOSHOP\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.) Directory [Browse with &IrfanView] -- "D:\Programy\IrfanView\i_view32.exe" "%1 /thumbs" (Irfan Skiljan) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [OneNote.Open] -- D:\Programy\Office12\ONENOTE.EXE "%L" (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{02BF7699-B635-4430-B739-97901DB9EA4B}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface | "{082EF940-FC24-487C-9ED2-533D9DE19AC7}" = rport=445 | protocol=6 | dir=out | app=system | "{0CEB5EAC-5B3A-4B6B-94CC-A6B08601E09A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{0F5EFBCD-C6E2-49C4-A4B7-B47A2777782C}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1D046091-A855-4718-A833-1FB4ACAA87BE}" = lport=10243 | protocol=6 | dir=in | app=system | "{2464006C-1B9F-4AD7-94A9-05E447CBC6D2}" = lport=58670 | protocol=17 | dir=in | name=pando media booster | "{29BF2251-3ADB-4BE0-80C6-82473897A3A0}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{2B387686-3DC4-43CD-9BE9-74C22C55F485}" = rport=137 | protocol=17 | dir=out | app=system | "{31B807AB-C28B-45C8-B6AF-C89E484E6908}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{38CE3B1C-A40E-4265-A217-5D64F63EF4B2}" = rport=10243 | protocol=6 | dir=out | app=system | "{47C1B41E-0C73-48C2-A91A-EA3A26168D8F}" = lport=49159 | protocol=6 | dir=in | name=akamai netsession interface | "{4ADAD95A-F353-484E-8419-32170CFC86D2}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{53BC790D-D970-44AC-9B4A-2A5F516A9236}" = lport=139 | protocol=6 | dir=in | app=system | "{5835AD47-B1C7-4B22-833C-3FA45EE9632B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{719A190E-D6DE-4979-B1FC-69C3AD0ECEDC}" = lport=2869 | protocol=6 | dir=in | app=system | "{747DB4CA-AB05-4C4B-A17F-D198D208A3CB}" = rport=139 | protocol=6 | dir=out | app=system | "{75B6FC07-782C-4C5C-A80E-0045FD80AB76}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7955700A-8138-4EFE-AD80-31EC2801DE4B}" = lport=58670 | protocol=17 | dir=in | name=pando media booster | "{79625C5E-1440-469B-80FE-56F3232AB50D}" = lport=58670 | protocol=6 | dir=in | name=pando media booster | "{8AE6AA31-5480-4622-A8C2-52A794BB3A35}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{99D5A5B0-114D-4DC6-8B0B-992483537340}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{9BC0CF9D-D336-460C-A3F0-0BCBEC36A624}" = rport=138 | protocol=17 | dir=out | app=system | "{A6F4C8F9-E7CB-4AE6-A738-4926D5091EC2}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A7DE8094-E655-4606-8145-9E974C6C4912}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{AA09BAF8-DBE7-457C-A382-403EE2BE5DC6}" = lport=137 | protocol=17 | dir=in | app=system | "{B252756F-5326-4B01-9F0B-F50B48368D84}" = lport=445 | protocol=6 | dir=in | app=system | "{B47FDB49-C420-4CE7-A866-A2C3976934AC}" = lport=6004 | protocol=17 | dir=in | app=d:\programy\office12\outlook.exe | "{BA17A6F6-E311-4F86-9BD1-AA7B479F8B6A}" = lport=138 | protocol=17 | dir=in | app=system | "{BA4870D9-6DB2-429D-85BA-591C24399D5F}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{BDD51B75-9F02-46CC-A995-B9C5533FAE7F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{C7159E6A-FE48-40D2-8139-BADB25086B35}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{CA70CFA3-E811-4032-B06C-DCDD303B9AAF}" = lport=58670 | protocol=6 | dir=in | name=pando media booster | "{D83D9DF1-F1A4-4C57-9DBB-A5518301376E}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{DAB0D0DF-485F-4745-91AB-1FA91D6788F1}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{DC04D75F-B987-4393-871C-0891E9A0B781}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{EFE0FA58-994E-4C61-9486-6EEFBD33437C}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F100BE23-986D-46FF-BCFE-67000ABFBDA2}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{FFA9FBCE-7B9F-4AFA-9B6D-E9C573B7BFD4}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{026F30F0-064F-467D-95A0-8C258EDFC621}" = protocol=6 | dir=in | app=d:\gry\prototype\prototypef.exe | "{090B36E9-6A41-418E-B8C3-26D87F3B852B}" = protocol=17 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{09824B2B-3AA1-4710-A954-215049262121}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{0BBC30C9-5791-4217-9ADC-648FF8DBFB1F}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{11F099A3-3D0A-4235-B3C6-E1A42C7AE548}" = protocol=6 | dir=in | app=d:\gry\warcraft iii\war3.exe | "{1EB1FD33-47D2-4D2E-AB16-126AF9D836EB}" = protocol=6 | dir=in | app=d:\gry\anno2070\autopatcher.exe | "{25656B3E-F5E4-4C6A-9332-9CD380F7DFB9}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{28134F04-6B81-4963-87AB-2B16F02E27FD}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{2859615A-1BF7-4A02-A4CB-F9A036E8E12F}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{2DBBD1BF-036D-4B51-9694-9E2B3478AB6D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{2FBCD2F6-3E86-4C4A-909A-874994FA3A73}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{2FF9795A-3FC6-4F4F-A4BB-EABD5B3058D3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{3A9C09A7-C2EF-47D6-A8FF-E732FE9CD4B6}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{411E4602-1F5A-4F15-8FBD-B085BE77AE45}" = protocol=17 | dir=in | app=d:\gry\anno2070\anno5.exe | "{4D55706B-2130-4BF5-BBAA-365A3F440F01}" = protocol=17 | dir=in | app=d:\gry\anno2070\autopatcher.exe | "{4DC19BEB-CE60-4607-806A-0CCB7F7F2D65}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{4FAD5354-9FFA-4860-B5DC-F1B46786DD6D}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{540E699E-01C7-4583-B03B-2F3DEF683B94}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{566186CC-F90F-4373-AFC1-34E26125BA04}" = protocol=17 | dir=in | app=d:\gry\anno2070\initengine.exe | "{59CCE92C-BD47-43BC-903C-55455D93A821}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{6134DEB6-CA16-427D-A3D1-34AC5F24D917}" = protocol=6 | dir=in | app=d:\programy\torrent\utorrent.exe | "{65D9E3F6-EC9F-4F98-9EA7-316F099CBEE0}" = protocol=6 | dir=in | app=e:\gry\cod\cod2mp_s.exe | "{676718F7-86EA-4FB0-857D-29FD88AC1920}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{6D133E32-73A2-4A00-BE81-83BD7F1CEBBF}" = protocol=6 | dir=out | app=system | "{729E92EF-2DFC-4320-92A1-40EE59A653C6}" = protocol=17 | dir=in | app=e:\gry\cod\cod2mp_s.exe | "{7484E88A-0224-40AF-89F8-937F3A6DA9E9}" = protocol=6 | dir=in | app=d:\gry\mass effect\masseffectlauncher.exe | "{74CA7128-01AA-48C3-B41A-707DC1BEDCCC}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{7CB329B2-552D-471E-AD10-96581FF97484}" = protocol=17 | dir=in | app=d:\programy\torrent\utorrent.exe | "{8BC22706-8973-43E2-A408-33E9EA485442}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{8BD32EAE-C458-4416-86B0-5B8ABB48F07F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8E4687DC-A3BC-4B29-AF15-41E00A012F01}" = protocol=6 | dir=in | app=d:\programy\office12\onenote.exe | "{91650467-2873-4A37-886A-C78B14E49D11}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{958A5EA4-08AB-4CB3-8087-B8208B62167E}" = protocol=17 | dir=in | app=d:\programy\office12\onenote.exe | "{9DA46018-9CBB-412A-BB7D-182AA7226B54}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{A41473AC-9F8F-4B54-ADDF-1E822F635199}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{A9AAD146-786C-4BE0-A5E2-197B8AE2EDE8}" = protocol=17 | dir=in | app=d:\gry\pandoramt2\metin2mod.bin | "{AC5C2E97-8798-4662-BEB7-F3DD4E727A2B}" = protocol=17 | dir=in | app=d:\programy\ts\ts3client_win32.exe | "{B2BE4824-E453-40BE-8045-57DE1E88454A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{B4796D6D-105E-4B63-99AE-0DD8BD12F424}" = protocol=6 | dir=in | app=d:\programy\office12\groove.exe | "{B966EF37-D35D-4BFD-863B-1D24CA95C364}" = protocol=17 | dir=in | app=d:\gry\moltenmt2\metin2.bin | "{BA56ACBB-B7B9-4A25-8E79-F276A9FE4CF8}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{BDF14E61-4455-4226-BE67-B1F35A62991C}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{C0A099D3-4D2D-433C-BA3B-F1175A848B63}" = protocol=6 | dir=in | app=c:\program files (x86)\ubisoft\ubisoft game launcher\ubisoftgamelauncher.exe | "{C386AC6A-D0EC-41D4-BC62-2E553D4067B6}" = protocol=6 | dir=in | app=d:\gry\anno2070\initengine.exe | "{C542D805-CAE4-4C5B-B7C5-C6A721FD1CEF}" = protocol=17 | dir=in | app=d:\gry\mass effect\masseffectlauncher.exe | "{CF3AB6C2-83BB-48F9-BF49-B9A426993579}" = protocol=17 | dir=in | app=d:\gry\mass effect\binaries\masseffect.exe | "{D2A95FC7-8EA7-4D39-A1C8-1AA22F37302B}" = protocol=17 | dir=in | app=d:\programy\office12\groove.exe | "{D37A3849-1DCB-4A4D-B966-A519305B58D0}" = protocol=6 | dir=in | app=d:\gry\mass effect\binaries\masseffect.exe | "{D3C98A15-679C-4730-AEF5-7CC55CC0082B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{DFB81C32-C31A-475E-8439-48023FD8DA07}" = protocol=17 | dir=in | app=d:\gry\warcraft iii\war3.exe | "{E03CB8BA-F111-48BF-9AD3-32AA76F55565}" = protocol=6 | dir=in | app=d:\gry\anno2070\anno5.exe | "{E6919210-378C-401E-B7DF-73E2A976E97D}" = protocol=6 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe | "{EC1159C5-AE00-4886-AB7A-BEE50EF97845}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{EC5D4746-B79D-45B2-AE02-4E7152AA2685}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{EDB87D1F-9A24-46C1-9571-36E2FEED1E4D}" = protocol=17 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe | "{F35D4DC2-496D-4F46-8F80-8A01503B018D}" = protocol=6 | dir=in | app=d:\programy\ts\ts3client_win32.exe | "{F5F15B3B-C15A-400E-8C2A-B31F01BA22E9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{FA7E5D70-B1C2-4ACB-A743-61BB151EBBDC}" = protocol=17 | dir=in | app=d:\gry\prototype\prototypef.exe | "{FABA52D1-7ECA-4824-8227-5BDCFADB9D56}" = protocol=6 | dir=in | app=d:\gry\moltenmt2\metin2.bin | "{FD0BAEC2-4819-4A31-B686-8DE821837014}" = protocol=6 | dir=in | app=d:\gry\pandoramt2\metin2mod.bin | "TCP Query User{02047DD4-925E-431C-99BB-5FAD78FA9394}D:\gry\cs\cstrike.exe" = protocol=6 | dir=in | app=d:\gry\cs\cstrike.exe | "TCP Query User{04D08C2D-19FF-4D06-8273-20741D07AA06}E:\gry\pandoramt2\metin2.bin" = protocol=6 | dir=in | app=e:\gry\pandoramt2\metin2.bin | "TCP Query User{0B8FF430-FA4D-454C-BE20-90C6C633EBB8}C:\users\artur\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\artur\appdata\local\akamai\netsession_win.exe | "TCP Query User{1BABE631-A23E-43E6-8543-3F6E78CBED04}D:\gry\metin2\metin2.bin" = protocol=6 | dir=in | app=d:\gry\metin2\metin2.bin | "TCP Query User{1C68D60E-ABCD-4238-B08C-1B3F7BDA9B26}D:\gry\cs\cstrike.exe" = protocol=6 | dir=in | app=d:\gry\cs\cstrike.exe | "TCP Query User{1C7BF519-3594-40AA-A48D-AFCF44046065}C:\program files (x86)\garena plus\room\garena_room.exe" = protocol=6 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe | "TCP Query User{1CFBBE94-655C-4C5E-8949-E51F61C6F55E}C:\users\artur\appdata\local\akamai\netsession_win.exe" = protocol=6 | dir=in | app=c:\users\artur\appdata\local\akamai\netsession_win.exe | "TCP Query User{22C7F95F-9F92-4904-B3F0-1CCCD1682219}E:\gry\cod\cod2mp_s.exe" = protocol=6 | dir=in | app=e:\gry\cod\cod2mp_s.exe | "TCP Query User{2470AEBF-698D-4C35-9BDA-B64FB02104DC}D:\gry\metin2\metin2client.bin" = protocol=6 | dir=in | app=d:\gry\metin2\metin2client.bin | "TCP Query User{2A5794FE-198A-4579-BBEE-F51BDD15D273}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "TCP Query User{2D5E7EE9-3F75-4837-9684-F3177F4A3237}C:\users\artur\desktop\patcher\metin2.bin" = protocol=6 | dir=in | app=c:\users\artur\desktop\patcher\metin2.bin | "TCP Query User{35653159-4212-4771-9639-A43867DFC94E}D:\gry\pandoramt2\metin2.bin" = protocol=6 | dir=in | app=d:\gry\pandoramt2\metin2.bin | "TCP Query User{5AF98867-1B63-4642-97E0-226471370277}D:\gry\wesnoth\wesnothd.exe" = protocol=6 | dir=in | app=d:\gry\wesnoth\wesnothd.exe | "TCP Query User{5B941526-B5B6-4402-9F5A-646C3F7DC835}D:\gry\cs\hlds.exe" = protocol=6 | dir=in | app=d:\gry\cs\hlds.exe | "TCP Query User{5BB01CFB-2376-4C12-BA66-AF19CD292AF8}D:\gry\ut\binaries\ut3.exe" = protocol=6 | dir=in | app=d:\gry\ut\binaries\ut3.exe | "TCP Query User{6453F5A2-32DA-4303-A232-3CB1E1165468}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "TCP Query User{6FC8948E-5B49-4088-AEA8-71FB7F4F3F41}D:\gry\warcraft iii\war3.exe" = protocol=6 | dir=in | app=d:\gry\warcraft iii\war3.exe | "TCP Query User{7179A781-837E-498F-8142-32758A072514}D:\gry\moltenmt2\metin2.bin" = protocol=6 | dir=in | app=d:\gry\moltenmt2\metin2.bin | "TCP Query User{927DBE60-6ED7-4F49-9067-E72A883184C6}D:\gry\cs\hlds.exe" = protocol=6 | dir=in | app=d:\gry\cs\hlds.exe | "TCP Query User{9EB8AEA5-5354-4642-AD2E-5CF5A3A5360D}D:\gry\ut\binaries\ut3.exe" = protocol=6 | dir=in | app=d:\gry\ut\binaries\ut3.exe | "TCP Query User{A500F0B9-095A-447A-A8C9-108D52A2F891}C:\windows\syswow64\dpnsvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dpnsvr.exe | "TCP Query User{AA7CA28A-DC9B-400A-9343-B582153F17BA}D:\gry\vietcong\vietcong.exe" = protocol=6 | dir=in | app=d:\gry\vietcong\vietcong.exe | "TCP Query User{B4B79009-3226-460D-909D-7812713F5AC0}D:\gry\metin2\metin2.exe" = protocol=6 | dir=in | app=d:\gry\metin2\metin2.exe | "TCP Query User{B9830FA5-DE1B-469D-9CA9-23E6E040F188}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "TCP Query User{C9035D47-1B66-4420-81E2-C97BAA44107A}D:\gry\metin2\metin2client.bin" = protocol=6 | dir=in | app=d:\gry\metin2\metin2client.bin | "TCP Query User{E4C5926B-5825-43F6-AA75-C4BA8F5C6EA3}D:\gry\metin2\metin2.bin" = protocol=6 | dir=in | app=d:\gry\metin2\metin2.bin | "TCP Query User{E6999A52-1A5C-41B3-B204-FA704DA2BE8E}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "TCP Query User{EC40445F-ABC1-4883-99F4-DD9FDDA59F2A}D:\programy\gg\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=d:\programy\gg\gadu-gadu 10\gg.exe | "TCP Query User{ED49E77E-2A26-4E76-AE6E-271BF32425AA}D:\gry\overlorld\overlord.exe" = protocol=6 | dir=in | app=d:\gry\overlorld\overlord.exe | "TCP Query User{EDDED85E-4E14-4922-A656-92C20A0D6E7F}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe | "TCP Query User{FDA188E0-D31D-4DE8-ACA5-8C288F6960A1}E:\gry\inorist\client.bin" = protocol=6 | dir=in | app=e:\gry\inorist\client.bin | "UDP Query User{042CF3CF-BD11-4028-A754-54A8BBE2AF28}D:\gry\overlorld\overlord.exe" = protocol=17 | dir=in | app=d:\gry\overlorld\overlord.exe | "UDP Query User{1950E077-A046-4D49-A407-6D75DC2942B4}C:\users\artur\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\artur\appdata\local\akamai\netsession_win.exe | "UDP Query User{1FF9049B-518E-4347-9A95-32F082957E32}C:\program files (x86)\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\java.exe | "UDP Query User{2E07CF62-75C0-4623-BD9B-EBDEE9C2AB31}C:\windows\syswow64\dpnsvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dpnsvr.exe | "UDP Query User{3514D416-FAFE-423E-81A7-A717B7D24407}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe | "UDP Query User{36B04B1F-735C-4440-9719-6F201FD3F23C}D:\gry\metin2\metin2.bin" = protocol=17 | dir=in | app=d:\gry\metin2\metin2.bin | "UDP Query User{3B6AFBF1-F379-4F98-B110-C50F82B02114}D:\gry\metin2\metin2.bin" = protocol=17 | dir=in | app=d:\gry\metin2\metin2.bin | "UDP Query User{4191B68F-976F-4F52-B898-3191C23963F1}E:\gry\pandoramt2\metin2.bin" = protocol=17 | dir=in | app=e:\gry\pandoramt2\metin2.bin | "UDP Query User{421F6888-5CF7-4CEB-983B-0546AAB62E15}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "UDP Query User{4B47376D-84A4-4592-8770-70FBA821248B}D:\gry\pandoramt2\metin2.bin" = protocol=17 | dir=in | app=d:\gry\pandoramt2\metin2.bin | "UDP Query User{675301DA-1E21-48BE-A52E-130D1264CA79}D:\gry\warcraft iii\war3.exe" = protocol=17 | dir=in | app=d:\gry\warcraft iii\war3.exe | "UDP Query User{7A5A7EB0-54AF-4597-BA2F-CB09831D1BAC}D:\gry\cs\cstrike.exe" = protocol=17 | dir=in | app=d:\gry\cs\cstrike.exe | "UDP Query User{7A8FC9F9-D04B-479D-92EF-37D486E9E5B8}D:\gry\cs\hlds.exe" = protocol=17 | dir=in | app=d:\gry\cs\hlds.exe | "UDP Query User{8BF38EE6-068F-474C-AE6B-E85B9AC29A17}D:\gry\moltenmt2\metin2.bin" = protocol=17 | dir=in | app=d:\gry\moltenmt2\metin2.bin | "UDP Query User{8C353849-3FE2-4197-9B3C-9E6E2B49421E}E:\gry\cod\cod2mp_s.exe" = protocol=17 | dir=in | app=e:\gry\cod\cod2mp_s.exe | "UDP Query User{8FC8B4E7-90F1-4540-945D-43294768928A}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{9E05ED83-59B7-467E-B1C2-622E2DDCF980}D:\gry\metin2\metin2.exe" = protocol=17 | dir=in | app=d:\gry\metin2\metin2.exe | "UDP Query User{A4C9DEF0-D63E-4DA6-BAB8-222C2A8067D1}C:\program files (x86)\garena plus\room\garena_room.exe" = protocol=17 | dir=in | app=c:\program files (x86)\garena plus\room\garena_room.exe | "UDP Query User{AC9A0188-F7D9-4031-86E6-2C939C4FD559}D:\gry\cs\hlds.exe" = protocol=17 | dir=in | app=d:\gry\cs\hlds.exe | "UDP Query User{B834BB08-E728-4ADE-80A7-43BD307A68DD}D:\gry\wesnoth\wesnothd.exe" = protocol=17 | dir=in | app=d:\gry\wesnoth\wesnothd.exe | "UDP Query User{C63990CC-01CD-47B9-8463-0265EA4957CF}D:\gry\ut\binaries\ut3.exe" = protocol=17 | dir=in | app=d:\gry\ut\binaries\ut3.exe | "UDP Query User{CDEF43E5-84EF-4F63-A475-DBD30CBD6ABF}D:\programy\gg\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=d:\programy\gg\gadu-gadu 10\gg.exe | "UDP Query User{CE5FEDD6-9E4F-4DB1-8100-076062E8605B}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | "UDP Query User{DCB03282-BDDD-4C13-87D4-E38FB0491337}D:\gry\vietcong\vietcong.exe" = protocol=17 | dir=in | app=d:\gry\vietcong\vietcong.exe | "UDP Query User{DEA8D24A-5601-4B84-BB28-416B641A6942}C:\users\artur\desktop\patcher\metin2.bin" = protocol=17 | dir=in | app=c:\users\artur\desktop\patcher\metin2.bin | "UDP Query User{E828CFB9-82AE-4DF7-9939-8A0E6F4F7D8C}C:\users\artur\appdata\local\akamai\netsession_win.exe" = protocol=17 | dir=in | app=c:\users\artur\appdata\local\akamai\netsession_win.exe | "UDP Query User{EE045F8E-BE02-4CA7-89B4-3C994F2345DA}D:\gry\cs\cstrike.exe" = protocol=17 | dir=in | app=d:\gry\cs\cstrike.exe | "UDP Query User{F500574D-107C-40F2-B08D-9575E9137B5C}D:\gry\metin2\metin2client.bin" = protocol=17 | dir=in | app=d:\gry\metin2\metin2client.bin | "UDP Query User{F6C29DBD-748E-4263-9C96-EE7215949658}E:\gry\inorist\client.bin" = protocol=17 | dir=in | app=e:\gry\inorist\client.bin | "UDP Query User{F7F93070-791C-470A-BC75-0E0EDF2FCE03}D:\gry\ut\binaries\ut3.exe" = protocol=17 | dir=in | app=d:\gry\ut\binaries\ut3.exe | "UDP Query User{FB3F0F1A-B159-4732-9869-4F1C571EC7D2}D:\gry\metin2\metin2client.bin" = protocol=17 | dir=in | app=d:\gry\metin2\metin2client.bin | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64 "{26A24AE4-039D-4CA4-87B4-2F86416024FF}" = Java(TM) 6 Update 24 (64-bit) "{296D8550-CB06-48E4-9A8B-E5034FB64715}" = Command & Conquer™ Red Alert™ 3 "{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64 "{49F3D04B-B849-4C89-AB31-2366A004EA28}" = Broadcom Gigabit Integrated Controller "{64A3A4F4-B792-11D6-A78A-00B0D0160240}" = Java(TM) SE Development Kit 6 Update 24 (64-bit) "{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64 "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{8E5DA9A6-7A9F-3A6F-BC5C-D6CBCA6A29C7}" = Microsoft .NET Framework 4 Extended PLK Language Pack "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007 "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager "{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64 "{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64 "{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64 "{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "CCleaner" = CCleaner "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended "NVIDIA Drivers" = NVIDIA Drivers "SynTPDeinstKey" = Synaptics Pointing Device Driver "WinRAR archiver" = Archiwizator WinRAR [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{02B244A2-7F6A-42E8-A36F-8C385D7A1625}" = Gothic III "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86 "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help "{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86 "{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5 "{1B0FBB9A-995D-47cd-87CD-13E68B676E4F}" = Mass Effect "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{21AF0637-0BE2-489F-9ACD-AA5803B625EA}" = Qualcomm Gobi Driver Package "{259A8A5E-2886-4BED-9EF1-D5485282CCC3}" = Overlord "{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1" = Media Player Classic - Home Cinema v1.5.0.2827 "{26A24AE4-039D-4CA4-87B4-2F83216031FF}" = Java(TM) 6 Update 31 "{26A24AE4-039D-4CA4-87B4-2F83217007FF}" = Java 7 Update 7 "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros Driver Installation Program "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{2934DCB0-F8EE-11E0-A4A5-B8AC6F97B88E}" = Google Earth Plug-in "{296D8550-CB06-48E4-9A8B-E5034FB64715}" = Command & Conquer™ Red Alert™ 3 "{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = WebCam "{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5067397A-2935-4290-AE14-1BE2863B00A3}_is1" = Convert MP4 to MP3 1.5 "{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053 "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86 "{6A9EF6CF-7630-4E33-AE22-7D70F3AF4B05}" = AION Free-To-Play "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{7B4A5C13-069F-4AFE-AE57-C497B4E33C7E}" = Call of Duty(R) 2 Patch 1.3 "{80157B54-DB3E-4EE9-8AD8-63A905765FF4}_is1" = Opti Drive Control 1.70 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{85767617-E6B1-499E-8C1B-C92E2AAFF586}" = TuneUp Utilities Language Pack (pl-PL) "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86 "{9322A850-9091-4D0E-B252-3E82EDA3D94A}" = Prototype(TM) "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9E149BA4-4AF0-4E90-AF01-BEC0C9E0B274}_is1" = VentriloMIX version 1.3 "{A2F166A0-F031-4E27-A057-C69733219435}_is1" = RaiderZ "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.4) "{B48E264C-C8CD-4617-B0BE-46E977BAD694}" = ANNO 2070 "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{B83FC356-B7C0-441F-8A4D-D71E088E7974}" = NVIDIA PhysX "{BFA90209-7AFF-4DB6-8E4B-E57305751AD7}" = Unreal Tournament 3 "{CADDE354-C78C-46CB-A006-E2B178EFC271}" = Rise Of Legends "{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2 "{D0ACE89D-EC7F-470F-80BE-4C98ED366B32}" = Acer Crystal Eye webcam Ver:1.1.74.216 "{D179B513-AD43-4013-AC50-C16107A0A02D}" = LogMeIn Hamachi "{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86 "{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}" = TuneUp Utilities "{D7A0A22A-C132-4B6F-8D68-67B95117DE93}" = RIFT "{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86 "{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F86B5FF0-E0C0-41AA-9FD3-5E9090FED323}" = Mumble 1.2.3 "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "{FD9C31B6-F572-414D-81E3-89368C97A125}_is1" = CamStudio OSS Desktop Recorder "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Advanced SystemCare 5_is1" = Advanced SystemCare 5 "AIMP2" = AIMP2 "Akamai" = Akamai NetSession Interface Service "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus "BandiMPEG1" = Bandisoft MPEG-1 Decoder "Browsers Protector" = Browsers Protector "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help "com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player "CWK" = CWK (Czasowy Wyłącznik Komputera) "DivX Setup.divx.com" = DivX Setup "Dziobas Rar Player_is1" = Dziobas Rar Player 0.009.50 "EASEUS Partition Master Home Edition_is1" = EASEUS Partition Master 8.0.1 Home Edition "ENTERPRISE" = Microsoft Office Enterprise 2007 "ePSXe InPCP_is1" = ePSXe InPCP 0.8.3 "EVEREST Home Edition_is1" = EVEREST Home Edition v2.20 "EW : Cossacks" = EW : Cossacks "Fraps" = Fraps "Game Booster_is1" = Game Booster 3 "Google Chrome" = Google Chrome "Heroes of Might and Magic® III" = Heroes of Might and Magic® III Complete "im" = Garena Plus "InstallShield_{6A9EF6CF-7630-4E33-AE22-7D70F3AF4B05}" = AION Free-To-Play "InstallShield_{9322A850-9091-4D0E-B252-3E82EDA3D94A}" = Prototype(TM) "InstallShield_{CADDE354-C78C-46CB-A006-E2B178EFC271}" = Rise Of Legends "InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2 "InstallShield_{D7A0A22A-C132-4B6F-8D68-67B95117DE93}" = RIFT "IrfanView" = IrfanView (remove only) "LogMeIn Hamachi" = LogMeIn Hamachi "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 1.65.1.1000 "Mozilla Firefox 16.0.2 (x86 pl)" = Mozilla Firefox 16.0.2 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "NapiProjekt_is1" = NapiProjekt 1.0.6.9 "PowerISO" = PowerISO "RealPlayer 12.0" = RealPlayer "Smart Defrag 2_is1" = Smart Defrag 2 "SubEdit-Player_is1" = SubEdit-Player "TeamSpeak 3 Client" = TeamSpeak 3 Client "Theorica Divx ;-) Codecs" = Theorica Divx ;-) Codecs (remove only) "TuneUp Utilities" = TuneUp Utilities "uTorrent" = µTorrent "Verbindungsassistent" = Verbindungsassistent "Warcraft III" = Warcraft III "WinCDEmu" = WinCDEmu "Xvid Video Codec 1.3.1" = Xvid Video Codec [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-312835210-1680697756-3547760466-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Akamai" = Akamai NetSession Interface "Battle for Wesnoth 1.8.6" = Battle for Wesnoth 1.8.6 "Counter-Strike 1.6: New Era" = Counter-Strike 1.6: New Era "GG" = GG "InstallShield_{BFA90209-7AFF-4DB6-8E4B-E57305751AD7}" = Unreal Tournament 3 "PhotoFiltre 7" = PhotoFiltre 7 "Warcraft III" = Warcraft III: All Products [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2012-11-21 16:14:52 | Computer Name = artur-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2012-11-21 16:14:52 | Computer Name = artur-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 2012-11-21 17:08:51 | Computer Name = artur-PC | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: TuneUpUtilitiesService64.exe, wersja: 9.0.3022.13, sygnatura czasowa: 0x4b55ebbc Nazwa modułu powodującego błąd: TuneUpUtilitiesService64.exe, wersja: 9.0.3022.13, sygnatura czasowa: 0x4b55ebbc Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000000000009f35a Identyfikator procesu powodującego błąd: 0x7a0 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdc823fd98615a Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesService64.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesService64.exe Identyfikator raportu: a5ebc788-341f-11e2-b686-001f16af5e3b Error - 2012-11-21 20:09:02 | Computer Name = artur-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2012-11-21 20:09:02 | Computer Name = artur-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2012-11-21 20:09:02 | Computer Name = artur-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 2012-11-22 04:21:50 | Computer Name = artur-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2012-11-22 04:21:50 | Computer Name = artur-PC | Source = Microsoft-Windows-LoadPerf | ID = 3012 Description = Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error - 2012-11-22 04:21:50 | Computer Name = artur-PC | Source = Microsoft-Windows-LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error - 2012-11-22 05:17:43 | Computer Name = artur-PC | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: TuneUpUtilitiesService64.exe, wersja: 9.0.3022.13, sygnatura czasowa: 0x4b55ebbc Nazwa modułu powodującego błąd: TuneUpUtilitiesService64.exe, wersja: 9.0.3022.13, sygnatura czasowa: 0x4b55ebbc Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000000000009f35a Identyfikator procesu powodującego błąd: 0x758 Godzina uruchomienia aplikacji powodującej błąd: 0x01cdc889ce541915 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesService64.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesService64.exe Identyfikator raportu: 780118b5-3485-11e2-a5ba-001f16af5e3b [ Media Center Events ] Error - 2011-04-05 23:06:31 | Computer Name = artur-PC | Source = MCUpdate | ID = 0 Description = 5:06:31 AM - Błąd podczas nawiązywania połączenia z Internetem. 5:06:31 AM - Nie można skontaktować się z serwerem.. Error - 2011-04-05 23:06:37 | Computer Name = artur-PC | Source = MCUpdate | ID = 0 Description = 5:06:36 AM - Błąd podczas nawiązywania połączenia z Internetem. 5:06:36 AM - Nie można skontaktować się z serwerem.. Error - 2011-04-06 07:16:10 | Computer Name = artur-PC | Source = MCUpdate | ID = 0 Description = 1:16:10 PM - Błąd podczas nawiązywania połączenia z Internetem. 1:16:10 PM - Nie można skontaktować się z serwerem.. Error - 2011-04-06 07:16:21 | Computer Name = artur-PC | Source = MCUpdate | ID = 0 Description = 1:16:15 PM - Błąd podczas nawiązywania połączenia z Internetem. 1:16:15 PM - Nie można skontaktować się z serwerem.. Error - 2011-04-07 07:48:01 | Computer Name = artur-PC | Source = MCUpdate | ID = 0 Description = 1:48:01 PM - Błąd podczas nawiązywania połączenia z Internetem. 1:48:01 PM - Nie można skontaktować się z serwerem.. Error - 2011-04-07 07:48:13 | Computer Name = artur-PC | Source = MCUpdate | ID = 0 Description = 1:48:06 PM - Błąd podczas nawiązywania połączenia z Internetem. 1:48:06 PM - Nie można skontaktować się z serwerem.. Error - 2011-04-07 16:24:20 | Computer Name = artur-PC | Source = MCUpdate | ID = 0 Description = 10:24:19 PM - Błąd podczas nawiązywania połączenia z Internetem. 10:24:19 PM - Nie można skontaktować się z serwerem.. Error - 2011-04-07 16:24:31 | Computer Name = artur-PC | Source = MCUpdate | ID = 0 Description = 10:24:25 PM - Błąd podczas nawiązywania połączenia z Internetem. 10:24:25 PM - Nie można skontaktować się z serwerem.. Error - 2011-04-08 06:31:13 | Computer Name = artur-PC | Source = MCUpdate | ID = 0 Description = 12:31:13 PM - Błąd podczas nawiązywania połączenia z Internetem. 12:31:13 PM - Nie można skontaktować się z serwerem.. Error - 2011-04-08 06:31:23 | Computer Name = artur-PC | Source = MCUpdate | ID = 0 Description = 12:31:18 PM - Błąd podczas nawiązywania połączenia z Internetem. 12:31:18 PM - Nie można skontaktować się z serwerem.. [ System Events ] Error - 2012-11-21 10:50:25 | Computer Name = artur-PC | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2012-11-21 11:36:55 | Computer Name = artur-PC | Source = Service Control Manager | ID = 7034 Description = Usługa TuneUp Utilities Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2012-11-21 16:00:19 | Computer Name = artur-PC | Source = Service Control Manager | ID = 7034 Description = Usługa TuneUp Utilities Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. Error - 2012-11-21 16:08:07 | Computer Name = artur-PC | Source = Application Popup | ID = 1060 Description = Ładowanie sterownika \SystemRoot\SysWow64\Drivers\prodrv02.SYS zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error - 2012-11-21 16:09:01 | Computer Name = artur-PC | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom SCDEmu Error - 2012-11-21 16:10:42 | Computer Name = artur-PC | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2012-11-21 17:08:57 | Computer Name = artur-PC | Source = Service Control Manager | ID = 7034 Description = Usługa TuneUp Utilities Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2012-11-22 04:16:57 | Computer Name = artur-PC | Source = Application Popup | ID = 1060 Description = Ładowanie sterownika \SystemRoot\SysWow64\Drivers\prodrv02.SYS zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika. Error - 2012-11-22 04:17:47 | Computer Name = artur-PC | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom SCDEmu Error - 2012-11-22 05:17:43 | Computer Name = artur-PC | Source = Service Control Manager | ID = 7034 Description = Usługa TuneUp Utilities Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. [ TuneUp Events ] Error - 2012-09-07 13:13:02 | Computer Name = artur-PC | Source = TuneUp.UtilitiesSvc | ID = 300 Description = Error - 2012-09-08 05:35:02 | Computer Name = artur-PC | Source = TuneUp.UtilitiesSvc | ID = 300 Description = Error - 2012-09-09 05:25:10 | Computer Name = artur-PC | Source = TuneUp.UtilitiesSvc | ID = 300 Description = Error - 2012-09-10 03:47:55 | Computer Name = artur-PC | Source = TuneUp.UtilitiesSvc | ID = 300 Description = Error - 2012-09-11 07:46:02 | Computer Name = artur-PC | Source = TuneUp.UtilitiesSvc | ID = 300 Description = Error - 2012-09-13 08:53:43 | Computer Name = artur-PC | Source = TuneUp.UtilitiesSvc | ID = 300 Description = Error - 2012-09-13 12:39:32 | Computer Name = artur-PC | Source = TuneUp.UtilitiesSvc | ID = 300 Description = Error - 2012-09-14 05:54:22 | Computer Name = artur-PC | Source = TuneUp.UtilitiesSvc | ID = 300 Description = Error - 2012-09-17 08:31:42 | Computer Name = artur-PC | Source = TuneUp.UtilitiesSvc | ID = 300 Description = Error - 2012-09-18 08:43:26 | Computer Name = artur-PC | Source = TuneUp.UtilitiesSvc | ID = 300 Description = < End of report >